Tagged “pip”
CVEs tagged pip, newest first.
4637 CVEsRSS
CVE-2026-46703Critical· 9.6Boxlite: Path Traversal Vulnerability Leads to Arbitrary File Write on the Host
Boxlite: Path Traversal Vulnerability Leads to Arbitrary File Write on the Host
CVE-2026-46556Medium· 6.5FlaskBB: SSRF in get_image_info() via unrestricted avatar URL
FlaskBB: SSRF in get_image_info() via unrestricted avatar URL
CVE-2026-2734Medium· 6.5MLflow authenticated users can enumerate any registered model versions due to lack of per-model permissions checks
MLflow authenticated users can enumerate any registered model versions due to lack of per-model permissions checks
CVE-2026-8597High· 7.2Amazon SageMaker Python SDK is missing integrity verification in its Triton inference handler
Amazon SageMaker Python SDK is missing integrity verification in its Triton inference handler
CVE-2026-48207Critical· 9.8Apache Fory PyFory Deserialization of Untrusted Data
Apache Fory PyFory Deserialization of Untrusted Data
CVE-2026-46432High· 7.8LMDeploy: Arbitrary code execution via hardcoded trust_remote_code=True in lmdeploy model initialization
LMDeploy: Arbitrary code execution via hardcoded trust_remote_code=True in lmdeploy model initialization
CVE-2026-46678Medium· 6.8Pydantic AI: SSRF cloud-metadata blocklist bypass via IPv4-mapped IPv6 (Incomplete fix of CVE-2026-25580)
Pydantic AI: SSRF cloud-metadata blocklist bypass via IPv4-mapped IPv6 (Incomplete fix of CVE-2026-25580)
CVE-2026-46517High· 7.8lmdeploy: Hardcoded trust_remote_code=True is an implicit unsafe remote-code load path with no user opt-out
lmdeploy: Hardcoded trust_remote_code=True is an implicit unsafe remote-code load path with no user opt-out
CVE-2026-46561Medium· 5.0pyload-ng: SSRF via HTTP Redirect Bypass in parse_urls API
pyload-ng: SSRF via HTTP Redirect Bypass in parse_urls API
CVE-2026-8596High· 7.2Cleartext storage of HMAC signing key in Amazon SageMaker Python SDK ModelBuilder/Serve path
Cleartext storage of HMAC signing key in Amazon SageMaker Python SDK ModelBuilder/Serve path
CVE-2026-46486MediumMobile Verification Toolkit (MVT): Path Traversal via unsanitized File identifiers in iOS Backup processing
Mobile Verification Toolkit (MVT): Path Traversal via unsanitized File identifiers in iOS Backup processing
CVE-2026-46645Medium· 4.3PoCSQLAdmin: Authorization Bypass on `ajax_lookup`
SQLAdmin: Authorization Bypass on `ajax_lookup`
CVE-2026-46497LowCrawlee for Python: SSRF via sitemap-derived URLs
Crawlee for Python: SSRF via sitemap-derived URLs
CVE-2026-48989HighWindows-MCP: HTTP transports expose unauthenticated PowerShell control with wildcard CORS
Windows-MCP: HTTP transports expose unauthenticated PowerShell control with wildcard CORS
CVE-2026-47102High· 8.8PoCLiteLLM prior to 1.83.10 allows a user to modify their own user_role via the /user/update endpoint
LiteLLM prior to 1.83.10 allows a user to modify their own user_role via the /user/update endpoint. While the endpoint correctly restricts users to updating only their own account, it does not restrict which fields may be changed. A user…
CVE-2026-47101High· 8.8PoCLiteLLM prior to 1.83.14 allows an authenticated internal_user to create API keys with access to routes that their role does not permit
LiteLLM prior to 1.83.14 allows an authenticated internal_user to create API keys with access to routes that their role does not permit. When generating a key, the allowed_routes field is stored without verifying that the specified route…
CVE-2026-45739Low· 3.1Strawberry GraphQL: Default GraphiQL may expose HTTP headers in URLs
Strawberry GraphQL: Default GraphiQL may expose HTTP headers in URLs
CVE-2025-51427High· 7.3ModelScope is vulnerable to arbitrary code injection via a crafted module
ModelScope is vulnerable to arbitrary code injection via a crafted module
CVE-2026-46338Medium· 4.3Regression in pymdownx.snippets reintroduces sibling-prefix path traversal bypass despite restrict_base_path
Regression in pymdownx.snippets reintroduces sibling-prefix path traversal bypass despite restrict_base_path
CVE-2026-46373High· 7.5SQLFluff: Recursive Stack Overflow in Parser
SQLFluff: Recursive Stack Overflow in Parser
CVE-2026-46374High· 7.5SQLFluff: Uncontrolled Resource Consumption in SQLFluff Parser
SQLFluff: Uncontrolled Resource Consumption in SQLFluff Parser
CVE-2026-8838Critical· 9.8PoCUnsafe use of Python's eval() on server-received data in the vector_in() function in amazon-redshift-python-driver before 2.1.14 allows a rogue server or man-in-the-middle actor to execute arbitrary code on the client
Unsafe use of Python's eval() on server-received data in the vector_in() function in amazon-redshift-python-driver before 2.1.14 allows a rogue server or man-in-the-middle actor to execute arbitrary code on the client. To remediate t…
CVE-2026-45539High· 7.4Microsoft APM: Symlinks under `.apm/prompts/` and `.apm/agents/` are dereferenced during `apm install`, copying host-local file contents …
Microsoft APM: Symlinks under `.apm/prompts/` and `.apm/agents/` are dereferenced during `apm install`, copying host-local file contents into the project tree
CVE-2026-45554Medium· 5.3NiceGUI: Unauthenticated log-volume denial of service in dynamic resource routes
NiceGUI: Unauthenticated log-volume denial of service in dynamic resource routes
CVE-2026-45727HighCloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
CloakBrowser: Unauthenticated path traversal via fingerprint parameter in cloakserve leads to arbitrary directory deletion
CVE-2026-45553High· 7.5NiceGUI: Local file disclosure via Docutils file insertion in ui.restructured_text()
NiceGUI: Local file disclosure via Docutils file insertion in ui.restructured_text()
CVE-2026-4137High· 7.0MLFlow Creates a Temporary File With Insecure Permissions
MLFlow Creates a Temporary File With Insecure Permissions
CVE-2026-8754Medium· 6.3AstrBot: File upload vulnerability in the function post_file of the file astrbot/dashboard/routes/chat.py
AstrBot: File upload vulnerability in the function post_file of the file astrbot/dashboard/routes/chat.py
CVE-2026-46383Medium· 5.5Microsoft APM: Windows absolute-path tar member overwrite during legacy-bundle probing in `apm install`
Microsoft APM: Windows absolute-path tar member overwrite during legacy-bundle probing in `apm install`
CVE-2026-2652High· 8.6PoCMLflow: unauthenticated access to certain FastAPI routes
MLflow: unauthenticated access to certain FastAPI routes